Instruction-Gated Data Protection for Crucial Memory Areas
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing systems fail to effectively protect crucial data from unauthorized modifications and breaches in memory utilization, particularly by hackers who can alter program code to access sensitive information like passwords or authentication data.
Innovation Solution
A data protection system with a determination device that distinguishes between protected and non-protected data areas, controlling access to ordinary and crucial data based on execution instructions, using a first and second storage unit to manage program code and data access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If crucial data is stored in memory for authentication purposes, then authentication functionality is enabled, but the data becomes vulnerable to unauthorized access and modification by hackers
Solution Approach 1:
The memory is segmented into different storage units: a first storage unit for program code and a second storage unit for data. The determination device further segments access control by distinguishing between protected and non-protected data areas, enabling fine-grained protection of crucial data while maintaining accessibility for authorized operations
Solution Approach 2:
The determination device acts as an intermediary between execution instructions and data access operations. It receives execution instructions, determines whether they correspond to protected or non-protected data areas, and controls data adjustment operations accordingly, preventing unauthorized access to crucial data
2Productivity
If program code is stored in memory for execution, then processing functionality is enabled, but the code can be altered by hackers to access sensitive information
Solution Approach 1:
The system segments storage into a first storage unit for program code and a second storage unit for data, separating code and data spaces. The determination device further segments access rights by identifying protected versus non-protected data areas, ensuring that even if code is altered, access to crucial data remains controlled
Solution Approach 2:
The determination device provides feedback control by examining execution instructions and determining whether they correspond to protected or non-protected data areas. Based on this determination, it controls whether data adjustment operations are permitted, creating a feedback loop that prevents unauthorized code modifications from accessing sensitive information
3Ease of operation
If authentication process is manipulated to bypass execution, then security protocol is breached, but proper authentication cannot be performed
Solution Approach 1:
The determination device serves as an intermediary that intercepts and examines execution instructions before they can access data. By determining whether instructions correspond to protected or non-protected data areas and controlling data adjustment operations accordingly, it prevents manipulation of the authentication process while maintaining proper functionality
Solution Approach 2:
The system takes preliminary anti-action by examining execution instructions in advance and determining their legitimacy before allowing data access. The determination device preemptively blocks unauthorized operations that would bypass authentication, ensuring security protocols remain intact
Data Source
AI summary
A data protection system includes a determination device and a second storage unit. The determination device can be used to receive an execution instruction, determine whether the execution instruction is corresponding to a protected data area or a non-protected data area of a first storage unit, and control a data adjustment operation accordingly. The second storage unit can be coupled to the determination device and used to store ordinary data and crucial data. If the execution instruction and the data adjustment operation are corresponding to the non-protected data area, the data adjustment operation is only allowed to access the ordinary data, and the data adjustment operation is prohibited to access the crucial data.


